Related Vulnerabilities: CVE-2017-11605  

There is a heap based buffer over-read in LibSass 3.4.5, related to address 0xb4803ea1. A crafted input will lead to a remote denial of service attack.

Severity High

Remote Yes

Type Denial of service

Description

There is a heap based buffer over-read in LibSass 3.4.5, related to address 0xb4803ea1. A crafted input will lead to a remote denial of service attack.

AVG-359 libsass 3.4.9-1 3.5.4-1 High Fixed

https://bugzilla.redhat.com/show_bug.cgi?id=1474019